This is true to the underlying system. Old browsers cannot work with TLS 1.2 so if you boot up old machines with old browsers, it is http only sites (of which there are now few)
In this case, I'm going to an http-accessible website, which normally works with Netscape 4 (and 3). It even displays the correct 403 message page (incorrectly.)